oss-sec mailing list archives
Re: taskstats authorized_keys presence infoleak PoC
From: Josh Bressers <bressers () redhat com>
Date: Tue, 21 Jun 2011 15:24:04 -0400 (EDT)
----- Original Message -----
/* * This program tries to learn whether ~user/.ssh/authorized_keys exists * and is nonempty for any user on local machine. It uses world-readable * taskstats' nature to get somewhat private io statistics information. If * implant taskstats or /proc//io polling into ssh client, it would be * possible to learn precise authorized_keys' size (and estimate private * key's(s') size).
Are you considering this a flaw, or just an interesting security exercise? Nothing currently comes to mind, but it's possible there could be other data where knowing it exists and the size would be useful. I'm thinking this isn't terribly dangerous for something like ssh. This is very interesting either way. Well done. -- JB
Current thread:
- taskstats authorized_keys presence infoleak PoC Vasiliy Kulikov (Jun 21)
- Re: taskstats authorized_keys presence infoleak PoC Josh Bressers (Jun 21)
- Re: taskstats authorized_keys presence infoleak PoC Vasiliy Kulikov (Jun 21)
- CVE request: kernel: taskstats/procfs io infoleak (was: taskstats authorized_keys presence infoleak PoC) Vasiliy Kulikov (Jun 24)
- Re: CVE request: kernel: taskstats/procfs io infoleak Vasiliy Kulikov (Jun 25)
- Re: CVE request: kernel: taskstats/procfs io infoleak Eugene Teo (Jun 26)
- Re: [Security] CVE request: kernel: taskstats/procfs io infoleak (was: taskstats authorized_keys presence infoleak PoC) Linus Torvalds (Jun 26)
- Re: [Security] CVE request: kernel: taskstats/procfs io infoleak (was: taskstats authorized_keys presence infoleak PoC) Andrew Morton (Jun 28)
- Re: [Security] CVE request: kernel: taskstats/procfs io infoleak (was: taskstats authorized_keys presence infoleak PoC) Linus Torvalds (Jun 28)
- Re: [Security] CVE request: kernel: taskstats/procfs io infoleak (was: taskstats authorized_keys presence infoleak PoC) Linus Torvalds (Jun 28)
- Re: [Security] CVE request: kernel: taskstats/procfs io infoleak (was: taskstats authorized_keys presence infoleak PoC) Vasiliy Kulikov (Jun 29)
- Re: [Security] CVE request: kernel: taskstats/procfs io infoleak (was: taskstats authorized_keys presence infoleak PoC) Vasiliy Kulikov (Jun 29)
- Re: taskstats authorized_keys presence infoleak PoC Josh Bressers (Jun 21)